Jonhnathan
|
2bf4644b48
|
Update win_renamed_paexec.yml
|
2020-11-28 09:08:48 -03:00 |
|
Jonhnathan
|
aac35341f5
|
Update win_renamed_paexec.yml
|
2020-10-15 18:24:00 -03:00 |
|
e6e6e
|
98c412044a
|
att&ck tags review: windows/process_creation part 5
added missing ATT&CK v6.3 IDs with comments and removed unnecessary "modified" attributes
|
2020-09-07 02:00:41 +04:00 |
|
e6e6e
|
7ae76b8d99
|
Revert "att&ck tags review: windows/process_creation part 5"
This reverts commit e94c47e74e .
|
2020-09-07 01:28:08 +04:00 |
|
e6e6e
|
e94c47e74e
|
att&ck tags review: windows/process_creation part 5
added missing ATT&CK v6.3 IDs with comments and removed unnecessary "modified" attributes
|
2020-09-07 01:19:41 +04:00 |
|
Thomas Patzke
|
0592cbb67a
|
Added UUIDs to rules
|
2019-11-12 23:12:27 +01:00 |
|
Michael Wade
|
f70549ec54
|
First Pass
|
2019-06-13 23:15:38 -05:00 |
|
Codehardt
|
1ca57719b0
|
fix: fixed reference list, otherwise it's not valid string list
|
2019-05-10 10:37:12 +02:00 |
|
Florian Roth
|
4298abffb7
|
Modifications
|
2019-04-17 23:29:29 +02:00 |
|
Jason Lynch
|
f0c8c428bb
|
added rules for renamed wscript, cscript and paexec. Added two directories to the existing sysmon_susp_prog_location_network_connection rule. These additions are all fin7 related.
|
2019-04-08 08:07:30 -04:00 |
|